
🟠 CVE-2026-34794 - High Endian Firewall version 3.3.25 and prior allow authenticated users to execute arbitrary OS commands via the DATE parameter to /cgi-bin/logs_ids.cgi. The DATE parameter value is used to constr... https://www.thehackerwire.com/vulnerability/CVE-2026-34794/ https://t.co/hYae3Uw2gh
Post summary
The post announces the discovery of CVE‑2026‑34794, detailing how authenticated users can exploit a command execution flaw in Endian Firewall's logs_ids.cgi script.


